
Simplify Unix/Linux security by integrating with Active Directory using One Identity's Safeguard Security Suite.
Vendor
One Identity
Company Website
Overview
The One Identity Safeguard Security Suite for Unix/Linux addresses the inherent security and administrative challenges associated with Unix-based systems, including Linux and macOS. By integrating these systems into Active Directory (AD), the suite unifies and consolidates identities, assigns individual accountability, and enables centralized reporting for both user and administrator access. This integration not only streamlines identity and access management but also simplifies compliance requirements, providing organizations with centralized visibility and administration of identities and access rights across their entire Unix environment.
Features and Capabilities
- Active Directory Bridge: Extend AD's security, compliance, and Kerberos-based authentication capabilities to Unix, Linux, and macOS systems. This allows non-Windows resources to become part of the AD trusted realm, achieving unified access control, authentication, authorization, and identity administration.
- Root Delegation: Offers two approaches to delegating the Unix root account:
- Enhance Sudo: Retain existing Sudo functionalities while adding features like a central Sudo policy server, centralized keystroke logs, a Sudo event log, and compliance reports detailing who can perform specific actions with Sudo.
- Replace Sudo: Implement more granular permissions and the ability to log keystrokes for all activities from user login, not just commands prefixed with "sudo." This approach includes additional security features such as restricted shells, remote host command execution, and hardened binaries to prevent unauthorized elevated access.
- Centralized Management Console: Provides a unified interface for managing local Unix users and groups, offering a consolidated view and centralized point of management across the Unix environment.
- Compliance and Reporting: Enables centralized reporting for user and administrator access to Unix systems, assisting organizations in meeting compliance requirements by providing detailed audit trails and activity logs.
- Streamlined Administration: Simplifies the process of unifying and consolidating identities across Unix, Linux, and macOS systems, reducing administrative overhead and potential errors associated with managing multiple identity stores.